svn commit: r304727 - in head/editors/emacs23: . files

Ashish SHUKLA ashish at FreeBSD.org
Sun Sep 23 04:37:06 UTC 2012


On Sun, 23 Sep 2012 04:20:59 +0000, Alexey Dokuchaev <danfe at FreeBSD.org> said:
> On Sun, Sep 23, 2012 at 12:31:34AM +0000, Ashish SHUKLA wrote:
>> New Revision: 304727
>> URL: http://svn.freebsd.org/changeset/ports/304727
>> 
>> Log:
>> - Fix remote code execution vulnerability
>> - Bump PORTEPOCH

> Why it was bumped?

Because as per VuXML report[1], the versions affected by vulnerability are
<24.2, and AFAIK, the only way to override this for Emacs 23.x is by bumping
PORTEPOCH. 

References:
[1]  http://portaudit.freebsd.org/c1e5f35e-f93d-11e1-b07f-00235a5f2c9a.html

HTH
-- 
Ashish SHUKLA      | GPG: F682 CDCC 39DC 0FEA E116  20B6 C746 CFA9 E74F A4B0
Sent from my Emacs
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://lists.freebsd.org/pipermail/svn-ports-all/attachments/20120923/157f6c90/attachment.sig>


More information about the svn-ports-all mailing list